Skip to content
Up To Date Time

Up To Date Time

  • Home
  • Sports
  • cryptocurrency
  • Technology
  • Virtual Reality
  • Education Law
  • More
    • About Us
    • Contact Us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
  • Toggle search form
SharePoint vulnerability with 9.8 severity rating under exploit across globe

SharePoint vulnerability with 9.8 severity rating under exploit across globe

Posted on July 22, 2025 By rehan.rafique No Comments on SharePoint vulnerability with 9.8 severity rating under exploit across globe

SharePoint vulnerability with 9.8 severity rating under exploit across globe

Installing the updates is only the beginning of the recovery process, since the infections allow attackers to make off with authentication credentials that give wide access to a variety of sensitive resources inside a compromised network. More about those additional steps later in this article.

On Saturday, researchers from security firm Eye Security reported finding “dozens of systems actively compromised during two waves of attack, on 18th of July around 18:00 UTC and 19th of July around 07:30 UTC.” The systems, scattered across the globe, had been hacked using the exploited vulnerability and then infected with a webshell-based backdoor called ToolShell. Eye Security researchers said that the backdoor was able to gain access to the most sensitive parts of a SharePoint Server and from there extract tokens that allowed them to execute code that let the attackers to expand their reach inside networks.

“This wasn’t your typical webshell,” Eye Security researchers wrote. “There were no interactive commands, reverse shells, or command-and-control logic. Instead, the page invoked internal .NET methods to read the SharePoint server’s MachineKey configuration, including the ValidationKey. These keys are essential for generating valid __VIEWSTATE payloads, and gaining access to them effectively turns any authenticated SharePoint request into a remote code execution opportunity.”

The remote code execution is made possible by using the exploit to target the way SharePoint translates data structures and object states into formats that can be stored or transmitted and then reconstructed later, a process known as serialization. A SharePoint vulnerability Microsoft fixed in 2021 had made it possible to abuse parsing logic to inject objects into pages. This occurred because SharePoint ran ASP.NET ViewState objects using the ValidationKey signing key, which is stored in the machine’s configuration. This could enable attackers to cause SharePoint to deserialize arbitrary objects and execute embedded commands. Those exploits, however, were limited by the requirement to generate a valid signature, which in turn required access to the server’s secret ValidationKey.

Technology

Post navigation

Previous Post: India undecided on playing XI, England send strong signal
Next Post: How Las Vegas’ Refined Hospitality Group Got Its Start

More Related Articles

Thousands of widely-used public workspaces are leaking data Thousands of widely-used public workspaces are leaking data Technology
Selenium com Linux sem interface Selenium com Linux sem interface Technology
Feedback Made Simple in Google Classroom Feedback Made Simple in Google Classroom Technology
S’pore’s Cloversoft on 10 yrs of growth & what’s next for the brand S’pore’s Cloversoft on 10 yrs of growth & what’s next for the brand Technology
I’m Going Galaxy S25 Ultra This Year I’m Going Galaxy S25 Ultra This Year Technology
KineMaster MOD APK No Watermark 100% Working UNBELIEVABLE KineMaster MOD APK No Watermark 100% Working UNBELIEVABLE Technology

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • IPL 2020 – MI bulldoze out of form Delhi Capitals to cruise to top 2
  • Will the first Modi 2.0 budget boost India’s AI readiness? | by Asia AI News
  • Bank of England weighs scrapping Britcoin plans as industry solutions reduce need for CBDC
  • How Las Vegas’ Refined Hospitality Group Got Its Start
  • SharePoint vulnerability with 9.8 severity rating under exploit across globe

Categories

  • cryptocurrency
  • Education Law
  • Sports
  • Technology
  • Virtual Reality

Copyright © 2025 Up To Date Time.

Powered by PressBook Blog WordPress theme